The serializer in html5lib prior to 0.99999999 might allow remote malicious users to conduct cross-site scripting (XSS) attacks by leveraging mishandling of the < (less than) character in attribute values.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
html5lib html5lib |